CVE-2023-53321
published 2025-09-16CVE-2023-53321: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are…
PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.14%
3.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211_hwsim: drop short frames
While technically some control frames like ACK are shorter and
end after Address 1, such frames shouldn't be forwarded through
wmediumd or similar userspace, so require the full 3-address
header to avoid accessing invalid memory if shorter frames are
passed in.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.55-1 (bookworm) | linux 6.1.55-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < 3beb97bed860d95b14ad23578ce8ddaea62023db | 3beb97bed860d95b14ad23578ce8ddaea62023db |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < 672205c6f2d11978fcd7f0f336bb2c708e28874b | 672205c6f2d11978fcd7f0f336bb2c708e28874b |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < c64ee9dd335832d5e2ab0a8fc83a34ad4c729799 | c64ee9dd335832d5e2ab0a8fc83a34ad4c729799 |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < b9a175e3b250b0dc6e152988040aa5014e98e61e | b9a175e3b250b0dc6e152988040aa5014e98e61e |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < 89a41ed7f21476301659ebd25ccb48a60791c1a7 | 89a41ed7f21476301659ebd25ccb48a60791c1a7 |
| linux | linux | >= 05d610af3e71a782fa28a1351b687da982d208ee < fba360a047d5eeeb9d4b7c3a9b1c8308980ce9a6 | fba360a047d5eeeb9d4b7c3a9b1c8308980ce9a6 |
| linux | linux_kernel | < 5.4.257 | 5.4.257 |
| linux | linux_kernel | >= 0 < 5.10.197-1 | 5.10.197-1 |
| linux | linux_kernel | >= 0 < 6.1.55-1 | 6.1.55-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 5.11 < 5.15.133 | 5.15.133 |
| linux | linux_kernel | >= 5.16 < 6.1.55 | 6.1.55 |
| linux | linux_kernel | >= 5.5 < 5.10.197 | 5.10.197 |
| linux | linux_kernel | >= 6.2 < 6.5.5 | 6.5.5 |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: wifi: mac80211_hwsim: drop short frames
vendor_redhat·2025-09-16·CVSS 7.1
CVE-2023-53321 [HIGH] CWE-1220 kernel: wifi: mac80211_hwsim: drop short frames
kernel: wifi: mac80211_hwsim: drop short frames
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211_hwsim: drop short frames
While technically some control frames like ACK are shorter and
end after Address 1, such frames shouldn't be forwarded through
wmediumd or similar userspace, so require the full 3-address
header to avoid accessing invalid memory if shorter frames are
passed in.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 8) - Fix deferred
Package
Debian
CVE-2023-53321: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80...
vendor_debian·2023·CVSS 7.1
CVE-2023-53321 [HIGH] CVE-2023-53321: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mac80...
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are shorter and end after Address 1, such frames shouldn't be forwarded through wmediumd or similar userspace, so require the full 3-address header to avoid accessing invalid memory if shorter frames are passed in.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved (fixed in 5.10.197-1)
forky: resolved (fixed in 6.5.6-1)
sid: resolved (fixed in 6.5.6-1)
trixie: resolved (fixed in 6.5.6-1)
GHSA
GHSA-g75g-rhj6-fwrr: In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211_hwsim: drop short frames
While technically some control frames li
ghsa_unreviewed·2025-09-16
CVE-2023-53321 [HIGH] GHSA-g75g-rhj6-fwrr: In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211_hwsim: drop short frames
While technically some control frames li
In the Linux kernel, the following vulnerability has been resolved:
wifi: mac80211_hwsim: drop short frames
While technically some control frames like ACK are shorter and
end after Address 1, such frames shouldn't be forwarded through
wmediumd or similar userspace, so require the full 3-address
header to avoid accessing invalid memory if shorter frames are
passed in.
OSV
CVE-2023-53321: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like
osv·2025-09-16·CVSS 7.1
CVE-2023-53321 [HIGH] CVE-2023-53321: In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are shorter and end after Address 1, such frames shouldn't be forwarded through wmediumd or similar userspace, so require the full 3-address header to avoid accessing invalid memory if shorter frames are passed in.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3beb97bed860d95b14ad23578ce8ddaea62023dbhttps://git.kernel.org/stable/c/672205c6f2d11978fcd7f0f336bb2c708e28874bhttps://git.kernel.org/stable/c/89a41ed7f21476301659ebd25ccb48a60791c1a7https://git.kernel.org/stable/c/b9a175e3b250b0dc6e152988040aa5014e98e61ehttps://git.kernel.org/stable/c/c64ee9dd335832d5e2ab0a8fc83a34ad4c729799https://git.kernel.org/stable/c/fba360a047d5eeeb9d4b7c3a9b1c8308980ce9a6
2025-09-16
Published